


Perceptive Security
SOC/SIEM Consultancy

A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0. Affected by this vulnerability is an unknown functionality of the file /…
Published:
3 juli 2026 om 22:00:00
Alert date:
4 juli 2026 om 20:01:12
Source:
nvd.nist.gov
Web Technologies, Database & Storage
A SQL injection vulnerability (CVE-2026-14641) has been identified in SourceCodester Class and Exam Timetabling System version 1.0. The vulnerability exists in the /edit_course.php file, where manipulation of the 'ID' argument can lead to SQL injection. The attack can be executed remotely without requiring local access. A public exploit has been disclosed, increasing the risk of active exploitation. The affected product is a web-based timetabling application commonly used in educational institutions. The vulnerability is rated as high severity given its remote exploitability and public disclosure. No patch or mitigation details are mentioned in the article.
Technical details
Mitigation steps:
Affected products:
SourceCodester Class and Exam Timetabling System 1.0
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-14641
https://github.com/sunjingyuan123/ccvvee/issues/2
https://vuldb.com/cve/CVE-2026-14641
https://vuldb.com/submit/846143
https://vuldb.com/submit/847955
https://vuldb.com/vuln/376157
https://vuldb.com/vuln/376157/cti
https://www.sourcecodester.com/
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
